Filtered by vendor Wpproking Subscriptions
Filtered by product Profilepro Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-6668 1 Wpproking 1 Profilepro 2025-06-04 5.4 Medium
The ProfilePro WordPress plugin through 1.3 does not sanitise and escape some parameters and lacks proper access controls, which could allow users with a role as low as subscriber to perform Cross-Site Scripting attacks